CVE-2008-1420
EPSS 8.9%發布日:2008/5/16修改日:2026/4/28
描述
Integer overflow in residue partition value (aka partvals) evaluation in Xiph.org libvorbis 1.2.0 and earlier allows remote attackers to execute arbitrary code via a crafted OGG file, which triggers a heap overflow.
受影響套件(1)
- Debian/libvorbisfrom 0, < 1.2.0.dfsg-3.1